糖心logo emphasizes both security and verification as fundamental business operations.

糖心logo maintains an ISO 27001 certification which provides external auditor validation that an effective Information Security Management System (ISMS) has been established to identify and manage information risks through a comprehensive set of company-wide processes and security controls, including processes and controls that continually improve the ISMS.
?
Our ISO 27001 certification is available through our trust site at ?

糖心logo maintains an ISO 27017 certification that provides external auditor validation that 糖心logo's ISMS includes security controls for the secure management of 糖心logo's cloud infrastructure as well as cloud service security for users of the 糖心logo CMAP.
Our ISO 27017 certification is available through our trust site at
?Note: ISO 27017 is an extension of the ISO 27001 framework, and as such, 糖心logo's ISO 27017 certification is included in 糖心logo's ISO 27001 certificate.

糖心logo is a proud member of the Cloud Security Alliance (CSA), an organization dedicated to enhancing the security of cloud computing. To demonstrate 糖心logo’s commitment to security, 糖心logo's security controls include scope for CSA’s Consensus Assessment Initiative Questionnaire (CAIQ) which have been certified as STAR Level 2 by an external auditor. 糖心logo’s CSA certifications and related CAIQ responses are available for review in the CSA STAR registry here.
?
Our CSA STAR certification and CAIQ are available through our trust site at

The service organization control (SOC) 1 Type II report provides an external auditor’s attestation that 糖心logo maintained appropriate controls around the Climate Management and Accounting Platform (CMAP) for customer financial reporting purposes (specific to carbon accounting). 糖心logo received a clean, unqualified audit report with no exceptions.
?
Our (SOC) 1 Type II report is available through our trust site at

The service organization control (SOC) 2 Type II report provides an external auditor’s attestation that 糖心logo's security controls were in place and effective for the report’s coverage period as related to the American Institute of Certified Public Accountant's (AICPA) trust service principles. 糖心logo was audited against the Security, Availability, and Confidentiality trust service principles and received a clean, unqualified audit report with no exceptions.
?
Our (SOC) 2 Type II report is available through our trust site at

SOCOTEC International Certification verifies that our platform calculates emissions correctly based on the PCAF Standard.

T?V Rheinland stands for safety and quality in virtually all areas of business and life. Founded almost 150 years ago, the company is one of the world’s leading, independent testing service providers; they rigorously validate that solutions, processes, and services comply with international standards. As such, T?V Rheinland is a global trademark of trust and verification.

The NIST Cybersecurity Framework (NIST CSF) provides guidance on how to manage and reduce IT infrastructure security risk. 糖心logo has adopted the NIST Cybersecurity Framework to cornerstone the development and maturing of our security organization, processes, and procedures.